Transparency around availability, security, data handling, AI processing, and reliability for teams who depend on MandateMind for audit‑grade work.
All systems operational.
App API Evidence ProcessingMandateMind is engineered for continuous availability. As production usage grows, this page will publish real‑time uptime metrics, incident history, and maintenance logs.
Target uptime: 99.9% monthly. Redundant services, automated scaling, and continuous health checks ensure predictable performance.
No incidents reported to date. Future incidents will be documented with root cause, impact analysis, and remediation steps.
Planned maintenance will be announced in advance and scheduled during low‑impact hours.
MandateMind is built for organizations where evidence, mandates, and controls must be handled with precision and confidentiality. Our data handling practices are designed to meet the expectations of CISOs, auditors, and enterprise buyers.
Customer data is hosted in secure, reputable cloud regions with strong compliance baselines, redundancy, and strict access controls.
MandateMind uses a minimal set of infrastructure subprocessors (cloud hosting, email delivery, secure AI inference). A full list will be published and maintained here for transparency.
We welcome responsible vulnerability reports and are committed to timely remediation and transparent communication.
MandateMind uses AI to summarize evidence, detect gaps, and generate readiness insights — without compromising privacy or security. AI is an assistant to your compliance program, not a risk to your evidence.
Your evidence is never used to train shared AI models. Customer data is not incorporated into foundation models or reused outside your tenant.
Evidence is processed in isolated, access‑controlled environments. AI inference is performed using secure pipelines — evidence is never sent to public LLM endpoints.
Customers may redact sensitive fields before AI processing to further control exposure.
AI summaries include source references and confidence indicators for auditability and verification.
MandateMind uses AI models to interpret evidence and generate compliance insights, but all processing is performed under strict isolation and non‑sharing guarantees. Customer evidence is never exposed publicly, never shared with model providers, and never used to train external AI models.
Customer evidence is never used to train OpenAI models or any third‑party AI systems. Model providers do not retain, store, or learn from MandateMind customer data.
All AI processing occurs inside secure, tenant‑segregated environments. Evidence is encrypted in transit and at rest before, during, and after AI operations.
Evidence is never sent to public LLM endpoints. MandateMind maintains full control over how evidence is processed and ensures that no external party can access customer data.
MandateMind uses a minimal set of subprocessors for infrastructure and secure AI inference. A public list will be maintained and updated here.
MandateMind balances performance, cost efficiency, and compliance needs through clear retention and fair‑use policies. These controls ensure predictable behavior for audit‑grade workloads.
Evidence may be automatically archived or deleted based on retention settings. Extended retention or cold storage may be available based on plan tier.
All plans include fair‑use AI processing limits to ensure platform stability. Excessive usage may trigger soft warnings, rate‑limiting, or overage billing.
Evidence storage is subject to fair‑use quotas based on plan tier. Customers may upgrade or purchase additional storage if needed.
Evidence, AI outputs, and metadata are isolated per tenant. MSP/vCISO multi‑tenant environments maintain strict client‑by‑client separation.
MandateMind publishes periodic updates covering new features, reliability improvements, and security enhancements across the platform.
For encryption, access controls, audit logging, and our compliance roadmap, visit the Security page.
View Security Overview